EP1266489B1 - Procede et appareil destines a coordonner un changement en fournisseur de service entre un client et un serveur avec gestion d'acces de service a base d'identification - Google Patents
Procede et appareil destines a coordonner un changement en fournisseur de service entre un client et un serveur avec gestion d'acces de service a base d'identification Download PDFInfo
- Publication number
- EP1266489B1 EP1266489B1 EP01920596A EP01920596A EP1266489B1 EP 1266489 B1 EP1266489 B1 EP 1266489B1 EP 01920596 A EP01920596 A EP 01920596A EP 01920596 A EP01920596 A EP 01920596A EP 1266489 B1 EP1266489 B1 EP 1266489B1
- Authority
- EP
- European Patent Office
- Prior art keywords
- network
- service
- service provider
- subscriber
- access
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Lifetime
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/28—Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
- H04L12/2801—Broadband local area networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/28—Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
- H04L12/2854—Wide area networks, e.g. public data networks
- H04L12/2856—Access arrangements, e.g. Internet access
- H04L12/2869—Operational details of access network equipments
- H04L12/2898—Subscriber equipments
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/28—Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
- H04L12/46—Interconnection of networks
- H04L12/4633—Interconnection of networks using encapsulation techniques, e.g. tunneling
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/54—Store-and-forward switching systems
- H04L12/56—Packet switching systems
- H04L12/5691—Access to open networks; Ingress point selection, e.g. ISP selection
- H04L12/5692—Selection among different networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L45/00—Routing or path finding of packets in data switching networks
- H04L45/302—Route determination based on requested QoS
- H04L45/308—Route determination based on user's profile, e.g. premium users
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L47/00—Traffic control in data switching networks
- H04L47/10—Flow control; Congestion control
- H04L47/20—Traffic policing
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
- H04L61/09—Mapping addresses
- H04L61/10—Mapping addresses of different types
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
- H04L61/50—Address allocation
- H04L61/5007—Internet protocol [IP] addresses
- H04L61/5014—Internet protocol [IP] addresses using dynamic host configuration protocol [DHCP] or bootstrap protocol [BOOTP]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
- H04L61/50—Address allocation
- H04L61/5084—Providing for device mobility
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
- H04L61/58—Caching of addresses or names
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/108—Network architectures or network communication protocols for network security for controlling access to devices or network resources when the policy decisions are valid for a limited amount of time
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/1001—Protocols in which an application is distributed across nodes in the network for accessing one among a plurality of replicated servers
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/50—Network services
- H04L67/51—Discovery or management thereof, e.g. service location protocol [SLP] or web services
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/50—Network services
- H04L67/75—Indicating network or usage conditions on the user display
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/16—Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]
- H04L69/161—Implementation details of TCP/IP or UDP/IP stack architecture; Specification of modified or new header fields
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/22—Parsing or analysis of headers
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/30—Definitions, standards or architectural aspects of layered protocol stacks
- H04L69/32—Architecture of open systems interconnection [OSI] 7-layer type protocol stacks, e.g. the interfaces between the data link level and the physical level
- H04L69/322—Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions
- H04L69/329—Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions in the application layer [OSI layer 7]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/40—Network security protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0807—Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/16—Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]
Definitions
- the present invention relates generally to communication network services, and, more particularly, to a method for enabling a client to change between service providers in a broadband communication network.
- Customer of communication network services often desire access to a plurality of different services and different service providers. For example, when using a dial-up confection to a packet-switched data network such as the Internet, a customer can choose from multiple service providers by dialing different telephone numbers in the PSTN.
- the physical path from the customer to the customer's Internet Service Provider (ISP) is dedicated to the connection for the duration of the telephone call.
- the ISP assigns an IP address to the customer and can link the authenticated customer and the assigned IP address to the physical address (e.g. dial-up modem) used by the customer. With this linkage, the ISP can ensure the customer only uses the address authorized by the ISP and can use the customer's IP address to manage access to the ISP's services.
- Both the physical connection between a customer and the ISP, and the linkage to IP address assignment and customer authentication are terminated when the dial-up connection is terminated.
- a general access system for access to communication services is known from WO-A-98 24224 .
- the system comprises a connectivity network, a number of access adapters connected to the network, a number of service provider networks, each connected to access adapters, a number of network terminals connected to the network and to a number of terminals. Access points of the service provider network are distributed to the network terminals which belong to subscribers of that service.
- the present invention provides in an illustrative embodiment, a method of configuring a network access device connected to an access network connected to a plurality of service networks, the network device having a first network address allocated to a subscriber of services of a first service provider provided by a first service network, with a new network address allocated to a second subscriber of services of either the first service provider, or a second service provider provided by a second service network.
- the method comprises the steps of: sending a request from the network access device to the access network with user credentials for the second subscriber requesting access to the first service provider or a change to the second service provider; receiving a response from the access network; and initiating a network address change request using a configuration protocol.
- a second network address allocated to the second subscriber of services of either the first or second service providers is assigned to the network access device to enable the network access device to communicate data packets to the service network providing the selected service.
- the subscriber is authenticated by a service activation system coupled to the access network prior to initiating the configuration protocol. Accordingly, the request to the access network includes an authentication request for the subscriber. The response received from the access network therefore includes an authentication status for the subscriber from the second service provider. If the subscriber is authenticated, the client initiates the network address change request.
- a plurality of subscribers operating network access devices 101, 102, 103, ... 104 are provided access to communication network services, which are facilitated by a plurality of packet-switched data networks, shown in FIG. 1 as 151 and 152.
- Packet-switched data networks 151 and 152 referred to herein as "service networks,” offer access to different services and/or are operated by different service providers.
- service network 151 could provide packet-switched connectivity to public data networks while service network 152 could offer packet-switched telephony service (or the same public data network connectivity, but from a different service provider).
- the service networks utilize a network addressing scheme to route datagrams to and from hosts: for example, where the service networks utilize the TCP/IP protocol suite, Internet Protocol (IP) addresses are assigned to each host and utilized in the process of routing packets from a source to a destination in the networks.
- IP Internet Protocol
- the network access devices 101 ... 104 are typically customer premises equipment (CPE) such as a personal computer, information appliance, personal data assistant, data-enabled wireless handset, or any other type of device capable of accessing information through a packet-switched data network.
- CPE customer premises equipment
- Each network access device 101 ... 104 is either connected to or integrated with a network interface unit 111 ... 114, e.g. a modem, which enables communication through an access network infrastructure, shown as 120 in FIG. 1 .
- Each network access device is assigned an IP address, which, in accordance with an aspect of the invention, is associated with a particular service or service provider to which the user of the device is subscribed.
- network access device 101 is assumed to have been assigned, for purposes of the description herein, an IP address associated with a service provider operating service network 151.
- a service activation system 160 which advantageously permits the dynamic allocation, assignment, and reassignment of IP addresses to the plurality of network access devices based on customer subscriptions to particular services.
- the network access device 101 communicates with the service network 151 through the access network infrastructure 120, which, in accordance with aspects of the invention, is capable of recognizing and directing traffic to the proper service network.
- the access network infrastructure 120 advantageously can be operated and maintained by an entity that is the same as or different from the entities operating and maintaining the service networks 151 and 152.
- the different IP-based services offered by the different service networks 151 and 152 utilize shared layer one and layer two resources in the access network 120. Layer three routing procedures, however, are modified to permit IP traffic from network access device 101 to flow to the correct subscribed service network 151.
- the access network 120 has a router 130 on the edge of the access network.
- the router 130 has a first interface with a connection to a router 141 in service network 151 and a second interface with a connection to a router 142 in service network 152. As further described herein, the router processes packets and is capable of directing traffic to the proper service network.
- FIG. 2A shows an exemplary access architecture based on a hybrid fiber coaxial (HFC) access network.
- HFC hybrid fiber coaxial
- each network interface device 201 ... 202 is either connected to or integrated with a cable modem 211 which enables communication through the HFC network 221.
- DOCSIS Data Over Cable Service Interface Specification
- CMTS Cable Modem Termination System
- FIG. 2A communicates with the cable modems 211 and manages access to both upstream and downstream cable capacity on the HFC networks 221.
- the CMTS 225 manages the scheduling of both upstream and downstream transmission and allocates cable capacity to individual customers identified by a Service IDs (SIDs).
- SIDs Service IDs
- the CMTS 225 can have an integrated router 228 or can be a separate device 226 that bridges to a fast Ethernet switch 227 which connects to the router 228.
- the IP router 228 provides connectivity to an IP network 222, which further comprises the router 230 (corresponding to router 130 in FIG. 1 ) which interfaces to IP routers 241 and 242 in service networks 251 and 252, respectively. Accordingly, the HFC network 221, the CMTS 225, and the IP network 222 correspond to the access network infrastructure 120 shown in FIG. 1 .
- 2B shows a conceptual diagram of the end-to-end communication protocol stack from a network access device 201 (101) to a router 241 (141) in service provider's network 251 (151).
- the lowest layer deals with the physical layer (PL) of the protocol stack, e.g. the Ethernet physical media device (PMD) layer;
- the second layer deals with the data link layer, e.g. the Ethernet Media Access Control (MAC) layer;
- the third layer in the protocol stack deals with the network layer, e.g. the IP layer.
- PL physical layer
- PMD Ethernet physical media device
- MAC Ethernet Media Access Control
- Router 130 in the access network 120 in FIG. 1 separates the IP traffic to/from the multiple services or service providers as well as combines traffic from the multiple service or service providers.
- IP packets are routed from network access device 101 to the subscribed service network 151 using source address-based policy routing.
- Conventional routing is destination-based: the router consults an internal routing table which maps the destination addresses of all inbound packets to a physical interface address for use for outgoing packets. Policy routing schemes, however, will selectively choose different paths for different packets even where the packet's destination address may be the same.
- the source address based policy routing scheme ensures packets from a network access device will go to the appropriate service network.
- the router receives an incoming packet, reads the packet header and retrieves the packet filtering rules, typically stored in an access list. The router then applies the packet filtering rules, and compares the source IP address in the packet header to a list of addresses allocated to subcribers to a first service provider, e.g. operating service network 151 in FIG. 1 . If the source address matches one of these addresses, then the router forwards the packet to a router in service network 151, e.g. router 141 in FIG. 1 .
- the router compares the source IP address in the packet header to a list of addresses allocated to subscribers of a second service provider, e.g. operating service network 152 in FIG. 1 . If the source IP address matches one of these addresses, then the router forwards the packet to a router in service network 152, e.g. router 142 in FIG. 1 . The router continues in this fashion with any other packet filtering rules identifying IP addresses allocated to subscribers of any other service providers. Assuming the IP source address does not match any such addresses associated with a service provider, the router applies any remaining packet filtering rules and routes or denies the packet accordingly.
- the network access device (or “client”) 101 includes, in an exemplary embodiment as a personal computer, a processing unit, memory, and a bus that interfaces the memory with the processing unit.
- the computer memory includes conventional read only memory (ROM) and random access memory (RAM).
- An input/output system (BIOS) contains the basic routines that help to transfer information between elements within the network access device 101 such as, for example, during start up. These are stored in the ROM.
- the network access device 101 may further include a hard disk drive, a magnetic disk (e.g., floppy disk) drive, and an optical disk drive (e.g., CD-ROM) in a conventional arrangement.
- the hard disk drive, magnetic disk drive and optical disk drive are coupled to the bus by suitable respective interfaces.
- the drives and associated computer-readable media provide nonvolatile storage for the network access device 101.
- the network interface unit 111 (211) as depicted in FIGS. 1 and 2 is coupled to an appropriate network interface communicating with the system bus.
- Client software residing in the computer memory associated with any particular network access device 101 ... 104 may provide a user interface for accessing several different communication network services at different times and in different browsing sessions.
- browser software running on network access device 101 may serve as a user interface for accessing both service network 151 and service network 152.
- the browser user interface 790 includes an HTML display area 791, and a windows-type border area including a function bar 792 having a plurality of buttons 793.
- a branding region 794 is provided in the border area for displaying brand indicia 795 as described copending application entitled "Method and Apparatus for Dynamically Displaying Brand Information In a User Interface,"assigned to a common assignee and filed concurrently herewith.
- the branding region may be located in the border 792 as shown, or may be located elsewhere in the border area of the browser.
- the brand indicia 795 displayed in the branding region 794 consists of information retrieved by the network access device from a branding data server (not shown).
- the browser user interface 790 provides a graphical user interface (GUI) and includes a service provider manager function or module that enables the user to switch between service providers (e.g., associated with networks 151, 152).
- the service provider manager function is enabled by selecting the appropriate button or control on the menu bar 792. This may be explicitly presented on a particular button 793 or such function can be part of a selection on a drop-down menu.
- the service provider management function of the client software permits the user to select a service provider from a list of subscribed service providers. In the embodiment depicted in FIG.
- the service provider manager function has been selected by the user and a window 720 is generated that contains a plurality of choices, e.g., SERVICE PROVIDER-1, SERVICE PROVIDER-2, SERVICE PROVIDER-3, and SERVICE PROVIDER-4 (hereinafter described as svc-1, svc-2, etc).
- a window 720 is generated that contains a plurality of choices, e.g., SERVICE PROVIDER-1, SERVICE PROVIDER-2, SERVICE PROVIDER-3, and SERVICE PROVIDER-4 (hereinafter described as svc-1, svc-2, etc).
- User credentials for each service provider may be cached within the client memory.
- the service provider manager can also offer to add new service providers in accordance with the user's selection, and update information may be downloaded as is well known in the art.
- a subscriber to svc-1 has an IP address currently allocated to svc-1, and desires to change to svc-2. The process for effectuating this change will be described in more detail below.
- a service activation system 160 which further comprises a configuration server 161 and a registration server 162 connected to the access network infrastructure 120.
- the registration server 162 provides a network-based subscription/authorization process for the various services shared on the access network infrastructure 120.
- a customer desiring to subscribe to a new service can access and provide registration information to the registration server 162, e.g. by using HTML forms and the Hyper Text Transfer Protocol (HTTP) as is known in the art.
- the registration server 162 updates a customer registration database 163 which associates the customer information including the customer's hardware address (e.g., the MAC address of the network access device 101) with the subscribed service.
- the customer's hardware address e.g., the MAC address of the network access device 101
- the configuration server 161 uses the registration information to activate the service.
- the configuration server 161 is responsible for allocating network addresses on behalf of the service networks from a network address space associated with the selected service.
- the configuration server 161 uses a host configuration protocol such as the Dynamic Host Configuration Protocol (DHCP) to configure the network addresses of the network access devices.
- DHCP Dynamic Host Configuration Protocol
- IETF Network Working Group RFC 2131 (March 1997 ); S. Alexander, R. Droms, "DHCP Options and BOOTP Vendor Extensions," IETF Network Working Group, RFC 2132 (March 1997 ); which are incorporated by reference herein.
- This aspect of the invention shall be described herein with particular reference to DHCP, and the configuration server 161 shall be referred to herein as the DHCP server, although those skilled in the art would readily be able to implement this aspect of the invention using a different protocol.
- the message 800 comprises an xid field 801, ciaddr field 802, yiaddr field 805, siaddr field 806, giaddr field 807, chaddr field 808, and an options field 810 including a message type sub-field 815 and svc-id 820.
- Each DHCP message is characterized by type, such as DHCPDISCOVER, DHCPOFFER, DHCPREQUEST OR DHCPACK.
- the type of each DHCP message is encoded into options field 810.
- Each DHCP message 800 is set to indicate whether it is being communicated from a client 101 or the DHCP server (part of the network administration system) 121.
- the message identification is implemented by setting the op field to BOOTREQUEST or BOOTREPLY, to respectively indicate the origin of the message.
- the IP address is contained in the yiaddr field 805.
- the chadddr field 808 contains the MAC address of the client 101.
- FIG. 5 there is shown an embodiment where the subscriber registers the service selection with the registration server which temporarily establishes the association between the network access device's hardware address (e.g. the MAC address of the device) and the chosen service selection.
- the configuration server then uses the MAC address of the network access device to assign an IP address from the proper address space.
- FIG. 5 is a simplified timeline diagram of DHCP messages exchanged, in accordance with such an embodiment.
- the network access device 501 registers a service selection with the registration server 503.
- the client 501 sends a "SET ISP" message to the registration server 503. It is assumed that the subscriber has passed the proper authentication procedures for the particular service selected, either beforehand (e.g.
- the registration server 503 stores the selected service and associates the service selection with the hardware device address (MAC address) of the network access device 501. It is advantageous for the DHCP server 502 to set a client class to the selected service provider with an "AUTHENTICATE UNTIL" option set to 10 minutes, to avoid assignment of the service-related IP address to another device.
- the registration server 503 sends an acknowledgment 506 to the network access device 501.
- the network access device 501 After receiving the acknowledgment from the registration server 503, the network access device 501 releases any pre-existing address assignment by issuing a DHCPRELEASE message at 507.
- the network access device issues a standard DHCPDISCOVER message.
- the DHCP server 502 receives the DHCPDISCOVER message and, at 509, allocates an IP address from the pool of address associated with the particular service associated with the device's MAC address.
- the DHCP server 502 should check to see whether the current client set to ISP "AUTHENTICATE UNTIL" has not expired.
- the DHCP server 502 sends a DHCPOFFER message that includes the IP address in a field in the DHCP message.
- the network access device 501 receives the DHCPOFFER and sends out a DHCPREQUEST back to the DHCP server 502.
- the DHCP server 502 commits to assigning the IP address to the network access device 501, commits the binding to persistent storage, and transmits a DHCPACK message containing the configuration parameters for the device. If the DHCP server is unable to satisfy the DHCPREQUEST message, the server responds with a DHCPNAK message.
- the DHCP servers and clients use some mutual authentication mechanism to restrict address assignment to authorized hosts and to prevent clients from accepting addresses from invalid DHCP servers.
- some mutual authentication mechanism for example, the "delayed authentication" scheme described in R. Droms, W. Arbaugh, "Authentication for DHCP Messages," IETF Network Working Group, Internet Draft, ⁇ draft-ietf-dhc-authentication-_.txt> ; or the Kerberos-based authentication mechanism described in K. Hornstein, T. Lemon, B. Aboba, J.
- the "delayed authentication” mechanism supports mutual authentication of DHCP clients and servers based on a shared secret, which may be provisioned using out-of-band mechanisms.
- the Kerberos-based mechanisms are very well suited for inter-realm authentication, thereby supporting client mobility, i.e. a network access device could connect to a particular access network infrastructure without any prior registration with the access network.
- Each service network provider could securely authenticate the network access device accessing the service network from another network "realm,” e.g. the access network infrastructure.
- the operator of the relevant service network may desire to maintain a separate registration server, e.g. server 155 in FIG. 1 , and to retain responsibility for user authentication and authorization.
- the service activation system 160 can provide a proxy server configured to permit HTTP traffic only between local hosts and registration server 155 in service network 152.
- the service provider operating service network 152 would then be responsible for providing the appropriate registration information required for proper service selection to the service activation system 160. In this event, the service provider would also be responsible for notifying the service activation system 160 when service should be discontinued to the particular user.
- the DHCP server 161 in the service activation system 160 can interact with the registration server 155 using a back-end authentication protocol, e.g.
- the DHCP server can contain a RADIUS client and, thereby, leverage the large RADIUS embedded base used for dial access authentication.
- FIG. 7 illustrates this embodiment of this aspect of the invention in a flowchart corresponding to the flowchart shown in FIG. 5 .
- the DHCP server 920 generates a random challenge and includes the challenge along with the allocated IP address in the DHCPOFFER message.
- the DHCP client 910 generates a response to the challenge by encrypting the challenge with a key that is derived from the subscriber's authentication information.
- the client 910 includes the challenge, response, and IP address in the DHCPREQUEST message.
- the DHCP server 920 forwards both the challenge and response in a RADIUS_ACCESS_REQ message to a RADIUS server 930 in the selected service network.
- the RADIUS server 930 either accepts or rejects the RADIUS request and responds accordingly at 906. If the RADIUS request is accepted, the DHCP server 920 sends a DHCPACK message at 907 and the client 910 enters a bound state. If the RADIUS request is rejected, the DHCP server 920 sends a DHCPNACK message which informs the client 910 that the IP address that was allocated has been withdrawn.
- FIG. 7 is a flowchart depicting the actions of the service client in accordance with an embodiment of the invention.
- the subscriber is logged into a profile with a working service provider's IP address, e.g., the address allocated to the user of svc-1 (151).
- the subscriber desires to change from the active service provider—svc-1 (151) to another subscribed service provider, svc-2 (152).
- the subscriber makes the request using the service provider manager function of the client, which will initiate a series of steps to effect a change in the IP address for network access device 101.
- the user accesses the service provider manager function of the client shown generally at 720 in Fig. 3 .
- the service provider manager function enables the user to select a service provider from a stored list of service providers in the client.
- the user is currently using active service provider svc-1 and desires to change to service provider svc-2.
- the client 101 fetches the current account configuration data from the service activation system 160 over the access network and checks whether the stored list of subscribed service providers is current. Any changes can be reconciled before displaying the selection of service providers to the user.
- the service activation system 160 is described above and can utilize user credentials, either explicitly requested or cached automatically, to authorize the fetching of account configuration data.
- the attempt to update the list of configured service providers may be refused and the user alerted that the credentials need to be updated.
- a specialized account restoration procedure can be utilized by a properly-authorized administrative user to update the cached credentials. Alternatively, the user may ignore the message and continue using the old list of configured service providers.
- These options may be displayed by the client software in a manner analogous to what is commonly utilized in a dial-up connection using text-based or graphical controls.
- the user selects an option within the service provider manager function to switch to the new service provider (svc-2). If the second service provider is not configured, then the service provider manager function 720 of the client can offer to add the new service provider.
- the client can be configured to automatically connect to the service activation system 160 and enable the user to interact with a service provider management feature in the service activation system 160 as well as any necessary service provider-specific registration sites. After receiving the proper configuration data and any service provide access credentials, if required by the service provider, the client can return back to step 303 in FIG. 7 .
- the client displays a warning with respect to switching between service providers while network applications are running. The user can then choose to either continue or cancel the operation. If the user chooses to cancel, then, at step 305, the current service provider association remains in effect and the client service provider manager function ends.
- the client signals the service activation system 160 at step 306 for a service provider change and provides the access device's (111) physical address information, such as a MAC address as discussed above.
- the client will also send the subscriber's credentials, in one exemplary embodiment, to enable the service activation system to authenticate the subscriber.
- the service activation system (registration server 162) will check the subscriber's credentials and credit information utilizing a network-based subscription/authorization process for the various services shared on the access network infrastructure. As described above, each user of the client 101 must be authenticated for a particular service since all subscribers of the client are using a common broadband connection.
- the client receives confirmation from the service activation system 160 that the change to the new service provider is authorized.
- the service activation system 160 returns an error message to the client, the existing service provider association remains in effect, and the client service provider manager function ends.
- the client sends a message to a local DHCP process (controlled by network application software in the client or on a networked system) requesting that it release and renew the IP address of the access device 101 in accordance with the methodology described above and illustrated in FIG. 5 . In this manner, a new IP address is assigned to the access device from the selected service provider.
- the client can update the browser interface 790 to reflect the settings specific to the active service provider (e.g., svc-2).
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
- Mobile Radio Communication Systems (AREA)
Claims (6)
- Procédé de configuration d'un dispositif d'accès au réseau (101, 102, 103, 104) ayant une première adresse de réseau allouée à un abonné à des services d'un premier fournisseur de services délivrés par un premier réseau de services (151), avec une nouvelle adresse de réseau allouée à un second abonné à des services de soit le premier fournisseur de services, soit un second fournisseur de services délivrés par un second réseau de services (152), le dispositif d'accès au réseau (101, 102, 103, 104) étant connecté à un réseau d'accès (120) connecté à une pluralité de réseaux de services (151, 152), caractérisé par les étapes consistant à :envoyer une requête du dispositif d'accès au réseau (101, 102, 103, 104) au réseau d'accès (120) avec des références d'utilisateur pour le second abonné demandant accès au premier fournisseur de services ou un changement vers le second fournisseur de services ;recevoir une réponse du réseau d'accès (120) ; etinitier une demande de changement d'adresse de réseau à l'aide d'un protocole de configuration,moyennant quoi une seconde adresse de réseau allouée au second fournisseur de services de soit le premier, soit le second fournisseurs de services, est affectée au dispositif d'accès au réseau (101, 102, 103, 104), la seconde adresse de réseau étant utilisée par le dispositif d'accès au réseau (101, 102, 103, 104) pour communiquer des paquets de données au réseau de services (151, 152) délivrant le service sélectionné.
- Procédé selon la revendication 1, dans lequel ladite requête audit réseau d'accès (120) comprend une demande d'authentification pour le second abonné.
- Procédé selon la revendication 2, dans lequel ladite réponse reçue dudit réseau d'accès (120) comprend un état d'authentification pour le second abonné provenant soit du premier (151), soit du second (152) fournisseurs de services et, en cas d'authentification, l'initiation de ladite demande de changement d'adresse de réseau.
- Procédé selon la revendication 1, dans lequel le protocole de configuration hôte est un protocole de configuration dynamique de l'hôte (DHCP).
- Procédé selon la revendication 1, dans lequel le dispositif d'accès au réseau (101, 102, 103, 104) reçoit une adresse IP (adresse numérique Internet).
- Procédé de configuration d'un dispositif d'accès au réseau (101, 102, 103, 104) ayant une première adresse de réseau allouée à un premier abonné à des services d'un fournisseur de services délivrés par un premier réseau de services (151), avec une nouvelle adresse de réseau allouée à un second abonné à des services du fournisseur de services, où le dispositif d'accès au réseau (101, 102, 103, 104) est connecté à un réseau d'accès (120) communiquant avec un système d'activation de services (160) et connecté à une pluralité de réseaux de services (151, 152), comprenant les étapes consistant à :envoyer des informations d'authentification pour le second abonné au système d'activation de services sur le réseau d'accès (120) ;recevoir un état d'authentification pour le second abonné depuis le système d'activation de services (160) et, en cas d'authentification :initier une demande de changement d'adresse de réseau à l'aide d'un protocole de configuration,moyennant quoi une adresse de réseau allouée au second abonné du fournisseur de services sélectionné est affectée au dispositif d'accès au réseau (101, 102, 103, 104), l'adresse de réseau étant utilisée par le dispositif d'accès au réseau (101, 102, 103, 104) pour communiquer des paquets de données au réseau de services (151, 152) délivrant le service sélectionné.
Applications Claiming Priority (5)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US812314 | 1991-12-23 | ||
US19063300P | 2000-03-20 | 2000-03-20 | |
US190633P | 2000-03-20 | ||
US09/812,314 US7027432B2 (en) | 2000-03-20 | 2001-03-20 | Method and apparatus for coordinating a change in service provider between a client and a server with identity based service access management |
PCT/US2001/008986 WO2001071984A1 (fr) | 2000-03-20 | 2001-03-20 | Procede et appareil destines a coordonner un changement en fournisseur de service entre un client et un serveur avec gestion d'acces de service a base d'identification |
Publications (2)
Publication Number | Publication Date |
---|---|
EP1266489A1 EP1266489A1 (fr) | 2002-12-18 |
EP1266489B1 true EP1266489B1 (fr) | 2008-04-23 |
Family
ID=26886286
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
EP01920596A Expired - Lifetime EP1266489B1 (fr) | 2000-03-20 | 2001-03-20 | Procede et appareil destines a coordonner un changement en fournisseur de service entre un client et un serveur avec gestion d'acces de service a base d'identification |
Country Status (7)
Country | Link |
---|---|
US (4) | US7027432B2 (fr) |
EP (1) | EP1266489B1 (fr) |
AT (1) | ATE393513T1 (fr) |
AU (1) | AU2001247630A1 (fr) |
CA (1) | CA2403832C (fr) |
DE (1) | DE60133729T2 (fr) |
WO (1) | WO2001071984A1 (fr) |
Families Citing this family (48)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20020099814A1 (en) * | 2001-01-24 | 2002-07-25 | International Business Machines Corporation | Method and apparatus for providing automatic discovery of network protocols, configurations and resources |
US20020165783A1 (en) * | 2001-05-02 | 2002-11-07 | Jean-Charles Gonthier | Accounting in peer-to-peer data communication networks |
US7181530B1 (en) * | 2001-07-27 | 2007-02-20 | Cisco Technology, Inc. | Rogue AP detection |
JP4236398B2 (ja) * | 2001-08-15 | 2009-03-11 | 富士通株式会社 | 通信方法、通信システム及び通信接続プログラム |
US7123609B2 (en) * | 2001-10-22 | 2006-10-17 | Microsoft Corporation | Managing packet-based telephony |
DE60229786D1 (de) * | 2002-02-08 | 2008-12-18 | Ericsson Telefon Ab L M | Nstanbietern mit kunden in einem zugriffsnetzwerk unter verwendung dynamisch zugeteilter mac-adressen |
US7532862B2 (en) * | 2002-03-19 | 2009-05-12 | Apple Inc. | Method and apparatus for configuring a wireless device through reverse advertising |
PL372459A1 (en) * | 2002-03-27 | 2005-07-25 | Siemens Aktiengesellschaft | Aaa server system for efficient access control and address assignment |
US20030217098A1 (en) * | 2002-05-15 | 2003-11-20 | Microsoft Corporation | Method and system for supporting the communication of presence information regarding one or more telephony devices |
US6801528B2 (en) * | 2002-07-03 | 2004-10-05 | Ericsson Inc. | System and method for dynamic simultaneous connection to multiple service providers |
US7124176B2 (en) * | 2002-08-30 | 2006-10-17 | Sun Microsystems, Inc. | Discovering thin-client parameters in an enterprise network environment |
JP4233297B2 (ja) * | 2002-10-07 | 2009-03-04 | 株式会社エヌ・ティ・ティ・ドコモ | 通信システム、移動端末、転送装置及び通信方法 |
US7272846B2 (en) * | 2002-12-20 | 2007-09-18 | Time Warner Cable, A Division Of Time Warner Entertainment Company, Lp | System and method for detecting and reporting cable modems with duplicate media access control addresses |
US7467227B1 (en) | 2002-12-31 | 2008-12-16 | At&T Corp. | System using policy filter decision to map data traffic to virtual networks for forwarding the traffic in a regional access network |
US7653191B1 (en) | 2003-06-26 | 2010-01-26 | Microsoft Corporation | Voice call routing by dynamic personal profile |
US7512969B2 (en) * | 2003-11-21 | 2009-03-31 | Time Warner Cable, A Division Of Time Warner Entertainment Company, L.P. | System and method for detecting and reporting cable network devices with duplicate media access control addresses |
EP1829350A4 (fr) * | 2004-12-22 | 2009-07-01 | Go2Call Com Inc | Plate-forme d'administration entrante, multiniveau et hebergee destinee a un systeme de telephonie commute par paquets |
CN1992736A (zh) * | 2005-12-30 | 2007-07-04 | 西门子(中国)有限公司 | Ip地址分配方法及其应用 |
US20070180499A1 (en) * | 2006-01-31 | 2007-08-02 | Van Bemmel Jeroen | Authenticating clients to wireless access networks |
US8745253B2 (en) * | 2006-03-08 | 2014-06-03 | Alcatel Lucent | Triggering DHCP actions from IEEE 802.1x state changes |
US8069476B2 (en) * | 2006-06-01 | 2011-11-29 | Novell, Inc. | Identity validation |
US9265022B2 (en) * | 2006-06-02 | 2016-02-16 | Qualcomm Incorporated | Multiple registrations with different access networks |
US8073123B2 (en) * | 2006-12-27 | 2011-12-06 | Vonage Network Llc | Method for automated management of a telecommunication service |
CN101296111B (zh) * | 2007-04-29 | 2012-06-27 | 华为技术有限公司 | 自动实现管理设备和被管理设备链接的方法及系统 |
US8125999B2 (en) * | 2008-05-30 | 2012-02-28 | At&T Intellectual Property I, L.P. | Systems and methods to minimize customer equipment downtime in a voice over internet protocol (VOIP) service network |
US8223631B2 (en) * | 2008-05-30 | 2012-07-17 | At&T Intellectual Property I, L.P. | Systems and methods to monitor and analyze customer equipment downtime in a voice over internet protocol (VoIP) service network |
US8144694B2 (en) * | 2008-06-11 | 2012-03-27 | Verizon Patent And Licensing Inc. | System and method for providing equal access over packet-switched networks |
US20110137980A1 (en) * | 2009-12-08 | 2011-06-09 | Samsung Electronics Co., Ltd. | Method and apparatus for using service of plurality of internet service providers |
US8549118B2 (en) * | 2009-12-10 | 2013-10-01 | At&T Intellectual Property I, L.P. | Updating a domain name server with information corresponding to dynamically assigned internet protocol addresses |
CN102131197B (zh) * | 2010-01-20 | 2015-09-16 | 中兴通讯股份有限公司 | 一种在公共设备上接入网络的方法及系统 |
CN102130887B (zh) * | 2010-01-20 | 2019-03-12 | 中兴通讯股份有限公司 | 一种在公共设备上接入网络的方法及系统 |
US8751691B1 (en) * | 2011-03-23 | 2014-06-10 | Amazon Technologies, Inc. | Methods and apparatus for remapping public network addresses on a network to an external network via an intermediate network |
US9338158B2 (en) * | 2011-10-14 | 2016-05-10 | Open Text S.A. | System and method for secure content sharing and synchronization |
US9094774B2 (en) | 2012-05-14 | 2015-07-28 | At&T Intellectual Property I, Lp | Apparatus and methods for maintaining service continuity when transitioning between mobile network operators |
US9148785B2 (en) * | 2012-05-16 | 2015-09-29 | At&T Intellectual Property I, Lp | Apparatus and methods for provisioning devices to utilize services of mobile network operators |
US8800015B2 (en) | 2012-06-19 | 2014-08-05 | At&T Mobility Ii, Llc | Apparatus and methods for selecting services of mobile network operators |
US9473929B2 (en) | 2012-06-19 | 2016-10-18 | At&T Mobility Ii Llc | Apparatus and methods for distributing credentials of mobile network operators |
EP2951967A4 (fr) * | 2013-02-04 | 2016-09-07 | Longsand Ltd | Gestion de l'accès à un réseau |
JP2016062232A (ja) * | 2014-09-17 | 2016-04-25 | 株式会社リコー | 情報処理システム、情報処理装置、プログラム及び情報処理方法 |
CN107580790B (zh) | 2015-05-07 | 2021-04-23 | 三星电子株式会社 | 用于提供简档的方法和装置 |
US10805291B2 (en) * | 2015-09-11 | 2020-10-13 | Comcast Cable Communications, Llc | Embedded authentication in a service provider network |
US9917823B2 (en) * | 2015-10-01 | 2018-03-13 | International Business Machines Corporation | Auditable retrieval of privileged credentials |
JP7148947B2 (ja) * | 2017-06-07 | 2022-10-06 | コネクトフリー株式会社 | ネットワークシステムおよび情報処理装置 |
US11212262B2 (en) * | 2019-03-04 | 2021-12-28 | Cyxtera Cybersecurity, Inc. | Management of network access request based on source address of device |
US11196731B2 (en) * | 2019-06-28 | 2021-12-07 | T-Mobile Usa, Inc. | Network-authentication control |
CN112398896B (zh) * | 2019-08-19 | 2023-11-07 | 上海诺基亚贝尔股份有限公司 | 用于提供服务的设备、方法、装置和计算机可读存储介质 |
US11336695B2 (en) * | 2019-11-15 | 2022-05-17 | Cisco Technology, Inc. | Conversation-based policy distribution |
EP3993352A1 (fr) * | 2020-10-29 | 2022-05-04 | Juniper Networks, Inc. | Prise en charge de l'équipement des locaux clients sur la base d'un protocole de configuration d'hôte dynamique dans la convergence filaire et sans fil de cinquième génération |
Family Cites Families (78)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5235642A (en) * | 1992-07-21 | 1993-08-10 | Digital Equipment Corporation | Access control subsystem and method for distributed computer system using locally cached authentication credentials |
US5539815A (en) * | 1995-02-24 | 1996-07-23 | At&T Corp. | Network call routing controlled by a management node |
US6486895B1 (en) | 1995-09-08 | 2002-11-26 | Xerox Corporation | Display system for displaying lists of linked documents |
US5754176A (en) | 1995-10-02 | 1998-05-19 | Ast Research, Inc. | Pop-up help system for a computer graphical user interface |
US5862325A (en) | 1996-02-29 | 1999-01-19 | Intermind Corporation | Computer-based communication system and method using metadata defining a control structure |
US5790548A (en) | 1996-04-18 | 1998-08-04 | Bell Atlantic Network Services, Inc. | Universal access multimedia data network |
US6069890A (en) * | 1996-06-26 | 2000-05-30 | Bell Atlantic Network Services, Inc. | Internet telephone service |
US6148332A (en) * | 1996-04-24 | 2000-11-14 | Earthlink, Inc. | Mandatory message display and reporting system |
US5937417A (en) | 1996-05-07 | 1999-08-10 | Sun Microsystems, Inc. | Tooltips on webpages |
US5898780A (en) * | 1996-05-21 | 1999-04-27 | Gric Communications, Inc. | Method and apparatus for authorizing remote internet access |
US6957260B1 (en) * | 1996-06-03 | 2005-10-18 | Microsoft Corporation | Method of improving access to services provided by a plurality of remote service providers |
SE511236C2 (sv) | 1996-11-29 | 1999-08-30 | Ericsson Telefon Ab L M | Ett modem med IP-stöd |
US6151643A (en) * | 1996-06-07 | 2000-11-21 | Networks Associates, Inc. | Automatic updating of diverse software products on multiple client computer systems by downloading scanning application to client computer and generating software list on client computer |
US5884024A (en) | 1996-12-09 | 1999-03-16 | Sun Microsystems, Inc. | Secure DHCP server |
US6073178A (en) | 1996-12-09 | 2000-06-06 | Sun Microsystems, Inc. | Method and apparatus for assignment of IP addresses |
US6005931A (en) | 1997-02-10 | 1999-12-21 | Genesys Telecommunications Laboratories, Inc. | Negotiated routing in telephony systems |
WO1998036608A2 (fr) | 1997-02-18 | 1998-08-20 | Cisco Technology, Inc. | Procede et appareil destines au multiplexage de donnees provenant d'usagers multiples d'un meme circuit virtuel |
US6542497B1 (en) * | 1997-03-11 | 2003-04-01 | Verizon Services Corp. | Public wireless/cordless internet gateway |
US6212192B1 (en) * | 1997-03-14 | 2001-04-03 | Itxc, Inc. | Method and apparatus for synchronizing information browsing among multiple systems |
US5898839A (en) * | 1997-03-17 | 1999-04-27 | Geonet Limited, L.P. | System using signaling channel to transmit internet connection request to internet service provider server for initiating and internet session |
US6219697B1 (en) | 1997-05-02 | 2001-04-17 | 3Com Corporation | Method and apparatus for operating the internet protocol over a high-speed serial bus |
KR19980086889A (ko) | 1997-05-15 | 1998-12-05 | 이데이 노부유끼 | 데이터 통신방법, 데이터 통신단말, 데이터 통신시스템 및 통신 제어시스템 |
US5918016A (en) | 1997-06-10 | 1999-06-29 | Texas Instruments Incorporated | System with program for automating protocol assignments when newly connected to varing computer network configurations |
AU8072798A (en) * | 1997-06-16 | 1999-01-04 | Doubleclick Inc. | Method and apparatus for automatic placement of advertising |
FI104667B (fi) * | 1997-07-14 | 2000-04-14 | Nokia Networks Oy | Liittymäpalvelun toteuttaminen |
US6029203A (en) | 1997-09-26 | 2000-02-22 | 3Com Corporation | Apparatus and methods for use therein for an ISDN LAN modem that provides enhanced network activity |
DE19742681C2 (de) * | 1997-09-26 | 2003-03-06 | Ericsson Telefon Ab L M | GPRS-Teilnehmerauswahl von mehreren Internet-Dienstanbietern |
US6118768A (en) | 1997-09-26 | 2000-09-12 | 3Com Corporation | Apparatus and methods for use therein for an ISDN LAN modem utilizing browser-based configuration with adaptation of network parameters |
US5978462A (en) * | 1997-10-08 | 1999-11-02 | Mci Communications Corporation | Method and system for automating updates to subscriber service accounts to accommodate numbering plan area splits |
US6577643B1 (en) * | 1997-10-14 | 2003-06-10 | Lucent Technologies Inc. | Message and communication system in a network |
US6665718B1 (en) * | 1997-10-14 | 2003-12-16 | Lucent Technologies Inc. | Mobility management system |
US6512754B2 (en) * | 1997-10-14 | 2003-01-28 | Lucent Technologies Inc. | Point-to-point protocol encapsulation in ethernet frame |
US6145002A (en) * | 1997-11-14 | 2000-11-07 | Qwest Communications International Inc. | System and method for accessing an internet service provider |
JP3654554B2 (ja) | 1997-11-21 | 2005-06-02 | 株式会社小松製作所 | ネットワークシステム及びdhcpサーバ選択方法 |
US6297824B1 (en) | 1997-11-26 | 2001-10-02 | Xerox Corporation | Interactive interface for viewing retrieval results |
US6009103A (en) | 1997-12-23 | 1999-12-28 | Mediaone Group, Inc. | Method and system for automatic allocation of resources in a network |
US20010019559A1 (en) * | 1998-01-09 | 2001-09-06 | Gemini Networks, Inc. | System, method, and computer program product for end-user self-authentication |
WO2000005684A2 (fr) | 1998-07-20 | 2000-02-03 | Easynet Access Inc. | Facturation relative a l'utilisation d'internet |
US6101499A (en) | 1998-04-08 | 2000-08-08 | Microsoft Corporation | Method and computer program product for automatically generating an internet protocol (IP) address |
US6173316B1 (en) | 1998-04-08 | 2001-01-09 | Geoworks Corporation | Wireless communication device with markup language based man-machine interface |
US6205479B1 (en) * | 1998-04-14 | 2001-03-20 | Juno Online Services, Inc. | Two-tier authentication system where clients first authenticate with independent service providers and then automatically exchange messages with a client controller to gain network access |
US6385651B2 (en) | 1998-05-05 | 2002-05-07 | Liberate Technologies | Internet service provider preliminary user registration mechanism provided by centralized authority |
US6396830B2 (en) | 1998-06-18 | 2002-05-28 | Lucent Technologies Inc. | Implementing network services over the internet through dynamic resolution of personal host names |
AU8567798A (en) | 1998-06-19 | 2000-01-05 | Netsafe, Inc. | Method and apparatus for providing connections over a network |
US6496206B1 (en) | 1998-06-29 | 2002-12-17 | Scansoft, Inc. | Displaying thumbnail images of document pages in an electronic folder |
JP2000059387A (ja) | 1998-08-10 | 2000-02-25 | Fujitsu Ltd | Dhcpサーバ装置 |
US20020002615A1 (en) * | 1998-09-18 | 2002-01-03 | Vijay K. Bhagavath | Method and apparatus for switching between internet service provider gateways |
US6606663B1 (en) | 1998-09-29 | 2003-08-12 | Openwave Systems Inc. | Method and apparatus for caching credentials in proxy servers for wireless user agents |
US6195094B1 (en) | 1998-09-29 | 2001-02-27 | Netscape Communications Corporation | Window splitter bar system |
US6212561B1 (en) | 1998-10-08 | 2001-04-03 | Cisco Technology, Inc. | Forced sequential access to specified domains in a computer network |
US6654891B1 (en) * | 1998-10-29 | 2003-11-25 | Nortel Networks Limited | Trusted network binding using LDAP (lightweight directory access protocol) |
US6381646B2 (en) * | 1998-11-03 | 2002-04-30 | Cisco Technology, Inc. | Multiple network connections from a single PPP link with partial network address translation |
US6360246B1 (en) * | 1998-11-13 | 2002-03-19 | The Nasdaq Stock Market, Inc. | Report generation architecture for remotely generated data |
US6442529B1 (en) * | 1998-11-17 | 2002-08-27 | Novaweb Technologies, Inc. | Methods and apparatus for delivering targeted information and advertising over the internet |
US6636894B1 (en) * | 1998-12-08 | 2003-10-21 | Nomadix, Inc. | Systems and methods for redirecting users having transparent computer access to a network using a gateway device having redirection capability |
US6657991B1 (en) | 1998-12-21 | 2003-12-02 | 3Com Corporation | Method and system for provisioning network addresses in a data-over-cable system |
US6243754B1 (en) * | 1999-01-08 | 2001-06-05 | International Business Machines Corporation | Dynamic selection of network providers |
US6272493B1 (en) * | 1999-01-21 | 2001-08-07 | Wired Solutions, Llc | System and method for facilitating a windows based content manifestation environment within a WWW browser |
US6654779B1 (en) * | 1999-04-14 | 2003-11-25 | First Data Resources | System and method for electronic mail (e-mail) address management |
US6748439B1 (en) | 1999-08-06 | 2004-06-08 | Accelerated Networks | System and method for selecting internet service providers from a workstation that is connected to a local area network |
JP3782265B2 (ja) * | 1999-09-07 | 2006-06-07 | 株式会社日立製作所 | オンラインサービス提供の取次装置 |
US6603758B1 (en) * | 1999-10-01 | 2003-08-05 | Webtv Networks, Inc. | System for supporting multiple internet service providers on a single network |
US6704288B1 (en) * | 1999-10-07 | 2004-03-09 | General Instrument Corporation | Arrangement for discovering the topology of an HFC access network |
US20020010608A1 (en) | 1999-10-08 | 2002-01-24 | Scott Faber | System for provding services in real-time overthe internet |
US6697864B1 (en) | 1999-10-18 | 2004-02-24 | Microsoft Corporation | Login architecture for network access through a cable system |
US6842789B1 (en) * | 1999-10-21 | 2005-01-11 | Sun Microsystems, Inc. | Method and apparatus for assigning unique device identifiers across a distributed computing system |
US6466986B1 (en) * | 1999-12-30 | 2002-10-15 | Nortel Networks Limited | Method and apparatus for providing dynamic host configuration protocol (DHCP) tagging |
KR100435493B1 (ko) * | 2000-01-04 | 2004-06-09 | 주식회사 눈앤누브시스템 | 인터넷 광고 접속 사항 기록 시스템 및 그 방법 |
FI120478B (fi) * | 2000-02-24 | 2009-10-30 | Nokia Corp | Menetelmä ja laitteisto tietoliikenneverkkoon liittymiseksi |
WO2001071567A1 (fr) | 2000-03-20 | 2001-09-27 | At & T Corp. | Procede d'affichage dynamique d'informations de marque dans une interface utilisateur |
US20010049737A1 (en) | 2000-03-20 | 2001-12-06 | Carolan Sean E. | Method and apparatus for coordinating user selection of network service providers over a broadband communications network |
US6286049B1 (en) * | 2000-03-24 | 2001-09-04 | Covad Communications Group, Inc. | System and method for providing broadband content to high-speed access subscribers |
US6667751B1 (en) | 2000-07-13 | 2003-12-23 | International Business Machines Corporation | Linear web browser history viewer |
KR100464374B1 (ko) * | 2000-11-01 | 2004-12-31 | 삼성전자주식회사 | 이동통신 단말기에 고정 주소를 할당하기 위한 시스템 및방법 |
US20020116484A1 (en) * | 2001-02-16 | 2002-08-22 | Gemini Networks, Inc. | System, method, and computer program product for supporting multiple service providers with a trouble ticket capability |
US20030172170A1 (en) | 2002-03-08 | 2003-09-11 | Johnson Gerald R. | Providing multiple ISP access to devices behind NAT |
US6801528B2 (en) | 2002-07-03 | 2004-10-05 | Ericsson Inc. | System and method for dynamic simultaneous connection to multiple service providers |
KR100580169B1 (ko) * | 2003-06-05 | 2006-05-15 | 삼성전자주식회사 | 복수 isp들을 유동적으로 선택하여 라우팅하는 장치 및방법 |
-
2001
- 2001-03-20 AT AT01920596T patent/ATE393513T1/de not_active IP Right Cessation
- 2001-03-20 AU AU2001247630A patent/AU2001247630A1/en not_active Abandoned
- 2001-03-20 CA CA002403832A patent/CA2403832C/fr not_active Expired - Fee Related
- 2001-03-20 DE DE60133729T patent/DE60133729T2/de not_active Expired - Lifetime
- 2001-03-20 US US09/812,314 patent/US7027432B2/en not_active Expired - Fee Related
- 2001-03-20 WO PCT/US2001/008986 patent/WO2001071984A1/fr active Application Filing
- 2001-03-20 EP EP01920596A patent/EP1266489B1/fr not_active Expired - Lifetime
-
2005
- 2005-12-29 US US11/321,152 patent/US7801056B2/en active Active
-
2010
- 2010-08-16 US US12/857,061 patent/US8396011B2/en not_active Expired - Fee Related
-
2013
- 2013-01-24 US US13/748,947 patent/US8724625B2/en not_active Expired - Fee Related
Also Published As
Publication number | Publication date |
---|---|
US20060104280A1 (en) | 2006-05-18 |
US20130139232A1 (en) | 2013-05-30 |
US20100313251A1 (en) | 2010-12-09 |
US7027432B2 (en) | 2006-04-11 |
US20010028660A1 (en) | 2001-10-11 |
DE60133729T2 (de) | 2009-07-02 |
EP1266489A1 (fr) | 2002-12-18 |
US8724625B2 (en) | 2014-05-13 |
ATE393513T1 (de) | 2008-05-15 |
CA2403832A1 (fr) | 2001-09-27 |
AU2001247630A1 (en) | 2001-10-03 |
US8396011B2 (en) | 2013-03-12 |
WO2001071984A1 (fr) | 2001-09-27 |
CA2403832C (fr) | 2006-08-29 |
DE60133729D1 (de) | 2008-06-05 |
US7801056B2 (en) | 2010-09-21 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
EP1266489B1 (fr) | Procede et appareil destines a coordonner un changement en fournisseur de service entre un client et un serveur avec gestion d'acces de service a base d'identification | |
EP1266508B1 (fr) | Procede et appareil permettant de coordonner un changement de fournisseur de services au niveau d'un client et d'un serveur | |
US7058022B1 (en) | Method for managing access to networks by employing client software and a configuration protocol timeout | |
CA2403733C (fr) | Procede d'affichage dynamique d'informations de marque dans une interface utilisateur | |
US6986157B1 (en) | Method and system for dynamic service registration in a data-over-cable system | |
US6351773B1 (en) | Methods for restricting access of network devices to subscription services in a data-over-cable system | |
US6018767A (en) | Method and system for managing subscription services with a cable modem | |
US20020023174A1 (en) | Service selection in a shared access network using dynamic host configuration protocol | |
US6657991B1 (en) | Method and system for provisioning network addresses in a data-over-cable system | |
US6189102B1 (en) | Method for authentication of network devices in a data-over cable system | |
US6240464B1 (en) | Method and system for managing addresses for network host interfaces in a data-over-cable system | |
US6775276B1 (en) | Method and system for seamless address allocation in a data-over-cable system | |
US6370147B1 (en) | Method for addressing of passive network hosts in a data-over-cable system | |
US6065049A (en) | Method and system for resolving addresses for network host interfaces from a cable modem | |
US6223222B1 (en) | Method and system for providing quality-of-service in a data-over-cable system using configuration protocol messaging | |
US6058421A (en) | Method and system for addressing network host interfaces from a cable modem using DHCP | |
US6170061B1 (en) | Method and system for secure cable modem registration | |
US6070246A (en) | Method and system for secure cable modem initialization | |
US6185624B1 (en) | Method and system for cable modem management of a data-over-cable system | |
US6560203B1 (en) | Method for changing type-of-service in a data-over-cable system | |
KR100590875B1 (ko) | 디.에이치.씨.피 스푸핑 서버가 포함된 피.피.피.오.이방식의 디지털 가입자 회선 모뎀 및 그 시스템, 그리고이를 이용하여 인터넷에 접속하는 방법 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
17P | Request for examination filed |
Effective date: 20020919 |
|
AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE TR |
|
17Q | First examination report despatched |
Effective date: 20061117 |
|
GRAP | Despatch of communication of intention to grant a patent |
Free format text: ORIGINAL CODE: EPIDOSNIGR1 |
|
GRAS | Grant fee paid |
Free format text: ORIGINAL CODE: EPIDOSNIGR3 |
|
GRAA | (expected) grant |
Free format text: ORIGINAL CODE: 0009210 |
|
AK | Designated contracting states |
Kind code of ref document: B1 Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE TR |
|
REG | Reference to a national code |
Ref country code: GB Ref legal event code: FG4D |
|
REG | Reference to a national code |
Ref country code: CH Ref legal event code: EP |
|
REF | Corresponds to: |
Ref document number: 60133729 Country of ref document: DE Date of ref document: 20080605 Kind code of ref document: P |
|
REG | Reference to a national code |
Ref country code: IE Ref legal event code: FG4D Free format text: LANGUAGE OF EP DOCUMENT: FRENCH |
|
NLV1 | Nl: lapsed or annulled due to failure to fulfill the requirements of art. 29p and 29m of the patents act | ||
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: FI Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 Ref country code: NL Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 Ref country code: PT Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080923 Ref country code: ES Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080803 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: AT Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
ET | Fr: translation filed | ||
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: SE Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080723 Ref country code: DK Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: BE Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
PLBE | No opposition filed within time limit |
Free format text: ORIGINAL CODE: 0009261 |
|
STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: NO OPPOSITION FILED WITHIN TIME LIMIT |
|
26N | No opposition filed |
Effective date: 20090126 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: IT Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: MC Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20090331 |
|
REG | Reference to a national code |
Ref country code: CH Ref legal event code: PL |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: LI Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20090331 Ref country code: IE Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20090320 Ref country code: CH Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20090331 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: GR Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080724 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: LU Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20090320 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: TR Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: CY Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT Effective date: 20080423 |
|
PGFP | Annual fee paid to national office [announced via postgrant information from national office to epo] |
Ref country code: DE Payment date: 20140331 Year of fee payment: 14 |
|
PGFP | Annual fee paid to national office [announced via postgrant information from national office to epo] |
Ref country code: GB Payment date: 20140225 Year of fee payment: 14 |
|
REG | Reference to a national code |
Ref country code: FR Ref legal event code: PLFP Year of fee payment: 15 |
|
PGFP | Annual fee paid to national office [announced via postgrant information from national office to epo] |
Ref country code: FR Payment date: 20150224 Year of fee payment: 15 |
|
REG | Reference to a national code |
Ref country code: DE Ref legal event code: R119 Ref document number: 60133729 Country of ref document: DE |
|
GBPC | Gb: european patent ceased through non-payment of renewal fee |
Effective date: 20150320 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: DE Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20151001 Ref country code: GB Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20150320 |
|
REG | Reference to a national code |
Ref country code: FR Ref legal event code: ST Effective date: 20161130 |
|
PG25 | Lapsed in a contracting state [announced via postgrant information from national office to epo] |
Ref country code: FR Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES Effective date: 20160331 |